I have always been a fan of Anubis binary analyzer, though I prefer Sandboxie in some serious situations. As Anubis is an online analyzer, running a binary there is totally risk free. Hence, it surely is time saving than going for Sandboxie where I have to boot into the separate VM I use, dedicated for Malware Analysis (just for extra security).

Anyway, for those who are unaware of Anubis:

Anubis is a tool for analyzing the behavior of Windows PE-executables with special focus on the analysis of malware. Execution of Anubis results in the generation of a report file that contains enough information to give a human user a very good impression about the purpose and the actions of the analyzed binary. http://anubis.iseclab.org/?action=about

Anubis recently added support for Android APKs, branding itself the first binary analyzer to do so. Hence, now it is possible to submit an APK files and get them analyzed by Anubis to identify what the APK file actually does in Android system. This service seems to use TaintDroid internally, could be in combination with several other tools.

In the report, it is clearly mentioned that phone number, IMEI/IMSI number, and other database information (TAINT_PHONE_NUMBER, TAINT_IMEI, TAINT_IMSI and TAINT_OTHERDB) have been leaked during the execution of application. Further details related to network communication carried out, file operations, crypto operations, usage of permissions and services are also detailed.

Though it is possible to get the kind of report when you are setting in-front of a computer, it could be an exacting process if you are using a mobile device. Moreover, uploading an APK of an installed application could be a problem as it is required to get the APK out of /data or /system.

Recently, I came across an useful Android application named Malware Analyzer which supports Anubis, Comodo Malware Analyzer, NoVirusThanks and URLVoid all in one.

Home Screen Screenshot

This application supports submitting files (APK / EXE), installed Android applications or URLs to Anubis analyzer, as well as other scanning engines it supports.

Also the application not only allows utilizing the power of Anubis APK analyzer just with the Android mobile or tab that you are having, but also allows scanning any file that is accessible to the Android device or any URL through 14 to 30 virus / malware scanning engines with NoVirusThanks / URLVoid. Scan results and reports are directly accessible through the application itself.